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Amend the claims as indicated below. 

1 1. (Currently amended) A method comprising: 

2 ^..^.^nf. n.^ infort r--'^-- " ^'^^ ^^^^^Ti th. mer pifonnatipffi compris es 

3 ;ri^tifir.at.ion infan^ation and acrnnnT arress information; 

4 mccivine aowu»t acccaa information from a uaer; ' 

5 accessing a user the^ccoutit using the received us§I.aeee9^information; 

6 ...^ infor m fti^n from third parties nMnP tlie received us er 

7 ji jifnrrnation-. and 

8 hiuvoatingdatafr u mu > vch pn g r n T .o eim i. J wlHi Ih. nrr m inf n n ri 

9 authcdticating the user' s abUity to access the account based on the obtained 

10 infnmiitiiTi, -,v ti rr'" nr^ W^-^^"^ ^"'■•^^^'"^ "^^'^ ^^^^^^ 

11 .on F"""F in fi^rnatlrvti received With W8Cr in^OFnfttioT^ ohtftW Sd- 

1 2. (Originally presented) A method as recited ia claim 1 further 

2 comprising determining a risk associated with the user. 

1 3. (Currently amended) A method as recited in claim 1 wherein obtaining 

2 ^^f^ fr^t^^ti fa>- -^--^ r-^^^ «>"^^^'"' harvesting data from a web pagfi 

3 „.ir.^ the re--^--^ "^^^ informatio nfui l Uu cu .nprigin& yulfiyix»e n vi^^^ 

4 identity hoood u u iuformnt in ii y xu viU n d by t h e rmff . 

1 4. (Currently amended) A method as recited in claim I y herejntH eted 

2 potties cotnnrise J uiLlu^ ooniprioin& > u lf a' ilig n m c r idontitj' boned ot 

3 pFe«ded*y a credit reporting s<arvice.imH n dflpnrtUPPTltPf ITi^tor vphfelw- 
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1 5. (Originally presented) A method as recited in claim 1 further 

2 comprising handling financial transactions initiated by the user and associated with the 

3 account. 

1 6. (Originally presented) A method as recited in claim 1 further 

2 comprising handling financial transactions initiated by the user and associated with the 

3 account if the user's abUity to access the account is authenticated. 



1 7. (Currently amended) A method as recited in clahn 1 wherein 

2 authenticating the user's ability to access the account includes comprises verifying one 

3 or more of the user's social security number, name, address, phone number, date of 

4 birth, and driver's license number. 



1 

2 



8. (Cuirently amended) A method as recited in claim 1 wherein 
authenticating the user's ability to access the account comprises presenting the user 
3 with a chaUenge question to be answered by the user. 

J 9. (Originally presented) A method as recited in claim 1 further 

2 comprising initiating a trial deposit into the account to further authenticate the user's 

3 ability to access the accoimt. 

1 10. (Originally presented) A method as recited in claim 1 wherein the 

2 account is a financial account. 

1 11. (Cunenily amended) A method as recited in claim 10 further 

2 comprising requesting a canceUed check associated with the financial account to 

3 further authenticate the user's abUity to access the financial account, and comparing 

4 information on the canoclJed check with information obtained from third-party sources. 
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1 IZ (Originallypresented) OneoriiMrecoiiiputer-readablemeiw^^ 

2 containing a conpner program that is execuUble by a processor to perform the method 

3 recited in claim 1. 

1 13. (Currently amended) A method comprising: 

2 receiving financial account access information from a user n-.pardinR a user 

3 flocount at a financial institution; 
obtaining information regarding the financial account from a financial data 

5 source; and 

6 authenticating the user' s ability to access the financial account based on the 

7 ,,1:,ninrd infnrmnrf T'-^o ^^°^rinf> tV. information rp rn yf^l from the user t g 

8 .K. WnrT..tion obtal -^-H fr^^ financial d.rn snnrrr. wherein U 

9 ,,^, yrr.« a third p^rtv separate from Th^ financial institution. 

1 14. (Originally presented) A method as recited in claim 13 fiirther 

2 comprising determining a risk associated with the user. 

1 15. (CurrenUy amended) A method as recited in claim 13 forther 

2 comprising verifying a user Identity based on information provided by the user. 

3 »,>w. ^^ verifvine T^'"" rrnnnarinP information r t^rf ^Vf^ from the user with 

4 in formation otiitained frorr^ a third oartV. 



4 



1 

2 



16. (Currently amended) A method as recited in claim 13 further 
comprising verifying a user identity based on information oMam^£om^*evide*^ 
3 third-party source comprising a credit reporting service. 

1 17. (Originally presented) A method as recited in claim 13 further 

2 comprising handling financial transactions initiated by the user and associated with the 

3 financial account. 
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1 18. (Originally presented) A method as recited in claim 13 further 

2 coinprising handling financial transaaions initiated by the and associated wHh the 

3 financial account if the user's ability to access the financial account is authenticated. 



1 

2 
3 



19 (CurrenUy amended) A method as recited in claim 13 wherein 
authenticating the user's ability to access the financial account coniprises verifying one 
or more of the user's social security number, name, address, phone number, date of 
4 birth, and driver' s license nuniber. 

1 20, (Currently amended) A method as recited in claim 13 wherein 

2 authenticating the user's ability to access the financial account comprises presenting 

3 the user with a chaUenge question to be answered by the user. 

1 21. (Originally presented) A method as recited in claim 13 further 

2 comprising initiating a trial transfer to further authenticate the user's ability to access 

3 the financial account 



1 



22. (Originally presented) A roethod as recited in claim 13 further 

2 comprising requesting a cancelled check associated with the financial account to 

3 fimher authenticate the user's ability to access the financial account. 

1 23. (Originally presented) One or more computer-readable memories 

2 containing a computer program that is executable by a processor to perform the method 

3 recited in claim 13. 

1 24. (CuxrenUy amended) A method of authenticating a u-ser's ability to 

2 access a financial account, the method comprising: 
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making a first transfer associated with the financial accomt^jsiiereiai^ 
U y . fin.i,dal m.nif>eTnpnt sy^tern conpbrt h^iween a u^er 
rv^,T^ii t«r and a plnralitv of financial institution^; 

requesting the user to identify the amount of the first transfer; 
confirming the user's ability to access the financial account if the user correctly 

8 identifies the amount of the first transffer; and 

9 denying the user's abUity to access the financial account if the user does not 

10 coirectly identify the amount of the first transfer. 

1 25. (Originally presented) A method as recited in claim 24 wherein the first 

2 transfer i$ a credit transfer. 

1 26. (Originally presented) A method as recited in daim 24 wherein the first 

2 transfer is a debit transfer. 

1 27. (Originally presented) A method as recited in claim 24 further 

2 comprising making a second transfer associated with the fitiancial account and 

3 requesting the user to identify the amount of the second transfer. 

1 28. (Originally presented) A method as recited in claim 27 further 

2 comprising confirming the user's abUity to access the financial account if the user 

3 correctly identifies the amount of the first transfer and the amount of the second 

4 transfier. 

1 29. (OriginaUy presented) A method as recited in claim 27 further 

2 comprising harvesting data from a web page associated with the financial account and 

3 authenticating the user's ability to access the financial account based on data harvested 

4 from the web page associated with the financial account. 
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1 30 (Origmally presented) A method as recited in claim 27 further 

2 comprising retrieving data from a financial data server associated with the financial 



3 



I 

2 



account and authenticating the user's ability to access the financial account based on 
data retrieved from the financial data server associated with the financial account. 



1 31. (Cuiiently amended) A computer implemented method comprismg: 

2 receiving account access information from a user; 

3 receiving user identification information from the user, 

4 obtaining information regarding the account r omprili^iP obtaininr infCTlton 

5 . thirH n«rtv ,r.,rrr. ...^^ the ac Tornt ^r.rm m fiffmntion rnriv*^^ ftom thg WW ? 

6 comparing the information obtained regarding the account with the 

7 identification information received from the user; and 

8 authorizing the user to access the account if the information obtained regarding 

9 the account matches the identification information received from the user. 



1 32. (Originally presented) The method of cUim 31 wherein the user 

2 identification information includes the user's name. 



33. (Currently amended) The method of claim 31 wherein the user 
identification information includes the user's mailing address, name, phone number. 



3 date ofbirth and driver's license number. 



1 
2 

1 
2 



34. (Originally presented) The method of claim 31 wherein the user 
identification information includes the user's email address. 

35, (Originally presented) The method of claim 31 farther comprising 
preventing the user from accessing the account if the information obtained regarding 
the account does not match the identification infbrmation received from the user. 
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36 (Originally presented) The method of claim 31 whereto obtaining 
information regarding the account includes obtaining information from a financial data 



1 

2 

3 source, 



37 (Originally presented) The method of claim 31 wherein obtaining 
information regarding the account includes harv«ting data from a web page associated 



1 

2 

3 with the account 



1 38. (Originally presented) Themethodof claim 31 wherein the account is a 

2 financial account providing online u$er access. 

1 39. (Currently amended) A method comprising: 

2 ..i^...f,..tr..nt system receiving account information from a user. 



wherein the account can be accessed via an online connection . whrr^,in thg financial 

4 »..... p.m..i.t .v.tem -»- T'--^ ""^"^ ^ '"''^ ^"^ " P^'^^""^^ """^^'^ 

5 insf i ^itions via a networ k; 

6 ,h~ — ^>»T^n,.nt .v.tem receiving user identification information from 

7 the user; 

8 .V. ..,^.^,1 ^,....n..nt svstem obtaining infr>rmation regarding the account 

9 ,m jii u.ni I Inn, iThrrin th- hf-rr f^^^"^ "b^^'"^'^ ^""^ <^ "^'^^ 

10 sniirees via network: 

11 f,.^.i,l tn^nag^n.^nt .svstem comparing the information obtained 

12 regarding the account with the identification information received from Hie user; and 
^1,- ^. f., ^,^.f>.m.nt system authorizing the user to execute actions with 

respect to the account if the information obtamed regarding the account matches the 
15 identification information received from the user. 



13 
14 



1 40. (Originally presented) The method of claim 39 wherein the user 

2 identification information includes the user's name. 
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1 41. (OriginaUyFesented) Theraethodofdaim 39 wherein the user 

2 identrication information includes the usert account number. 

1 42. (Originally presented) Then»thodof claim 39 wherein the user 

2 identification information includes the user's mafltag address. 

1 43. (Originally presented) The method of claim 39 further comprisfaig 

2 preventing the user froin executing actions with respect to the account if the 

3 information obtained regarding the account does not match the identification 



4 faiformation received from the user. 



1 
2 



44. (Originally presented) The method of claiin39 wherein obtaining 
information regarding the account includes harvesting data from a web page associated 
3 with the account. 

1 45. (New) A user authentication method for allowing the user access to a 

2 user account at one of a plurality of financial institutions, the method comprising: 

3 a third-party financial management system colleaing user information; 

4 the third-party financial management system collecting user financial account 

5 information, wherein the third-party financial management system is coupled among 

6 the user and the plurality of fmancial institutions via at least one network; 

7 the third-party financial management system coUecting information about the 

8 plurality of financial institutions: 

9 defining a set of authentication rules to authenticate the user; 
the third-party financial management system receiving a request from the user 

account, wherein the request includes authentication information from 



10 



11 to access a user 



12 the user; 

13 the thiid-party financial management system applying the authentication rules 

14 to determine whether to authenticate the user; 
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15 when the user is successfully authenticated, retrieving risk information related 

16 to the user, wherein risk information comprises historical data related to user 

17 transactions; 

1 8 when the user is successfully authenticated, the third-party financial 

19 management system determining whether to allow access to the user account, wherem 

20 access includes the third-party financial management system executing a requested 

21 transactiononbehalf of theuscr. 

1 46. (New) Themethodofclaim45,whereinriskinfonmtionfiirther 

2 comprises: 

3 average balances of user accounts; 

4 movement of funds between user accounts; and 

5 success rates of transactions requested involving user accounts. 



1 



47. (New) The method of claim45, wherein risk information further 



2 comprises: 

3 previous transaction history; 

4 previous session history, including duration of account access; 

5 account set-up history; 

6 time elapsed since last transaction; 

7 time ekpsed since account added; 

8 affiliations of an account with other users; 

9 couq)arison of a geographic location of the request and geographic locations of 

10 previous requests, including determinhig distance between geographic locations, times 

1 1 of transactions executed from particular geographic locations, and types of connections 

12 used at particular geographic locations. 
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1 48. (New) Themeth<)dofclaim45,wheremdetenmningwhethertoallow 

2 access to the user account comprises aUowing conditional access to the user account, 

3 comprising imposing conditions including; 

4 changing a dollar amount Umit on a transaction; 

5 changing a settlement period for a transaction; and 

6 requiring additional authentication procedures. 



1 
2 



49. (New) The method of claim 45, liirther comprising updating the risk 
information based on requested user transactions and updated user information. 



1 50. (New) The method of claim 45, wherein the third-party financial 

2 management system collects user financial account information from the plurality of 

3 financial institution.s. 

1 51. (New) The method of claim 45, wherem the user information Is 

2 collected in one or more manners selected from a group comprising, collecting directly 

3 from the user, ooUecting from an agency that holds user information, collecting from 

4 one of the plurality of financial histitutions, and screenrscraping the user information 

5 via one of the at least one networlra. 

1 52. (New) A financial management system, comiwising: 

2 a communication imerfece through which the financial management system 

3 communicates via at least one network with a plurality of financial institutions and 

4 with a user device; 

5 a transaction execution module configurable to execute user-requested 

6 transactions with the plurality of financial institutions onbehalf of the user; and 

7 an authentication and risk analysis module configured to collect risk 

8 information comprising historical data related to user-requested transactions, and 

9 fijrtber configured to authenticate the user when the user requests a transaction. 
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53. (New) Thesystemofclaim52,whcreintheauthenttcationandrisk 
analysis module is forther configured to define a set of authentication rules to 
authenticate the user, and wherein authenticating the user conjprises applying the 
authentication rules to determine whether to authenticate the user. 

54. (New) The system of claim 53, whraein application of the 
authentication rules results in one or more of initiation of an additional authentication 



3 process and issuance of a one-time useable password. 



1 



55. (New) The system of claim S3, wherein risk information further 



2 con^rises: 

3 average balances of user accounts; 

4 movement of funds between user accounts; and 

5 success rates of transactions requested involving user accounts. 

1 56. (New) The system of 55, wherein the risk infbnnation fiirther 

2 con^rises: 

3 previous transaction history; 

4 • previous session history, including duration of account access; 

5 account set-up history; 

6 time elapsed since last transaction; 

7 time elapsed since account added; 

8 affiliations of an account with other users; 

9 compari.«>n of a geographic location of the request and geographic locations of 

10 previous requests, including determining distance between geographic locations, times 

11 of transactions ejcecuted from particular geographic tocations, and types of connections 

12 used at particular geographic tocations. 
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1 57. (New) Hie system of claim 53. wherein determining whether to 

2 authenticate the user comprises condhionaUy authenticating the user, conq>rising 

3 imposing conditions on the transaction, including: 

4 changing a dollar amount Umit on the transaction; 

5 changing a settlement period for the transaction; 

6 requiring additional authentication procedures; and 

7 rerouting the transaction through another channel. 

1 58. (New) The system of claim 52, forfher comprising updating the risk 

2 information based on requested user transactions and updated user information. 



59. (New) The system of claim 52, wherein the authentication and risk 
analysis module collects user financial account information from the plurality of 



I 

2 

3 financial institutions. 



1 60. (New) The system of claim 52, wherein the authentication and risk 

2 analysis module coUects the user information in one or more mam^ers selected from a 

3 group comprising, collecting directly from the user, collecting from an agency that 

4 hold., user infonnation. collectmg from one of the plurality of financial institution, and 

5 screen-scraping the user information via one of the at least one networks. 

1 61. (New) Thesystemofclaim52.whereinexecutingtheuser-requested 

2 transaction comprises: 

3 in a first part of the transaction, the financial management system executing a 

4 transaction with a first financial institution; 

5 Hie financial management system holding the fimds from the transaction in an 

6 intermediate account owned by the financial management system at a third financial 



7 institution; and 
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in a second part of the transaction, the financial manageinent system executing 
a transaction with a second financial institution to deposit the fi«uis in an account at the 



8 
9 

10 second financial institution. 



1 



62. (New) The system of claim 52, wherein the authentication and risk 



2 analysis module comprises: 

3 an authentication and risk analysis engine; and 

4 a user account information collection module coupled to the authentication and 

5 risk analysis engine, wherein the authentication and risk analysis engine is configurable 

6 to apply authentication rules and to determine a level of risk associate with auser- 

7 requested transaction. 

1 63 (New) Thesystemofclaim62,whereindeterminingthelevelofrisk 

2 includes computing a probability of rfek. 



64. (New) Thesystemofclaim52,whereintheauthenticationandrisk 
analysis module further comprises a user an authentication analysis logic module 



1 

3 coupled to the authentication and risk analysis engine, wherein the user authentication 

4 analysis module is configurable to develop authentication rules. 



65. (New) The system of claim 52. wherein the authentication and risk 
analysis module further comprises a risk analysis logic module coupled to the 
authentication and risk analysis engine, wherein the risk analysis module is 
4 configurable to analyze risk information. 

1 66. (New) The system of claim 52, wherein the authentication and risk 

2 analysis module further comprises a financial institution and market data collection 

3 module coupled to the authenticatton and risk analysis engine. 



1 
2 
3 
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1 67. (New) A computer-readable medium having stored thereon 

2 instructions, that when executed, cause a user-authentication method to be performed, 

3 the method comprising: 

4 a third-p^ty financial managenient system collecting user inforroatioii; 

5 the third-party financial managetncnt system collerting user fin«icial acccwant 

6 information, wherein the third-party financial management system is coupled among 

7 the user and the plurality of financial institutions via at least one network; 

8 the third-party financial management system collecting information about the 

9 plurality of financial institutions; 

JO defining a set of authentication rules to authenticate the user; 

1 1 the third-party financial management system receiving a request fitom the user 

12 to access a user account, wherein the request includes authentication information from 

13 the user; 

14 the third-paity financial management system applying the authentication rules 

15 to determine whether to authenticate the user; 
when the user is successfiiUy authenticated, retrieving risk information related 

to the user, wherem risk information comprises historical data related to user 



16 
17 



19 
20 



18 transactions; 

when the user is successfuUy airthentkated, the third-party financial 
roanagement system determining whether to allow access to the user account, wherein 

21 access includes the third-party financial management system executing a requested 

22 transaction on behalf of the user. 

1 68. (New) The computer-readable medium ofclaim 67. wherein risk 

2 information fiirther comprises: 

3 average halaiwes of user accounts; 

4 movement of funds between user accounts; and 

5 success rates of transactions requested involving user accounts. 
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1 69. (New) The computer-readable niedium of claim 67, wherein 

2 detenoming whether to allow access to the user account comprises allowing 
conditional access to the user account, comprising imposing conditions including: 

4 changing a dollar amount limit on a transaction; 

5 changing a settlement period for a transaction; 

6 requiring additionalauthentication procedures; and 

7 rerouting the transaction through another channel 



Patent 



3 



70. (New) The computer-readable medium of claim 67, wherein the 
method further comprises updating the risk information based on requested aser 



1 
2 

3 transactions and updated user information. 

1 71. (New) The computer-readable medium of claim67, wherein the third- 

2 party financial management system collects user financial accomrt information from 

3 the plurality of financial institutions. 

1 72. (New) The computer-readablemedmrn of claim 67, wherein the user . 

2 information is coUected in one or more mamiers selected from a group comprising, 

3 collecting directly from the user, collecting from an agency ttiat holds user information. 

4 coUecting from one of llie pluraUty of financial institutions, and screen-scraping the 

5 user information via one of the at least one networks. 
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